Network Management

"The PaloAlto API polling credentials you entered are invalid or will not be saved" when trying to enter Palo Alto credentials in Edit Node details

This article discusses on what to do when the Palo Alto credentials does not get saved even after submitting the changes done in Edit Node details page.

First published date

7/5/2019 2:30 AM

Last published date

7/9/2025 11:07 PM

Overview

Palo Alto credentials does not get saved even after enabling Palo Alto polling settings > Poll for Palo Alto and submitting changes in Node details.



In the OrionWeb.log, the following error messages may appear:

ERROR OrionFirewallsControlsPaloAltoPollingCheckBox - (null) PaloAlto polling has been enabled on node [X], but there is no API key. Credentials cannot be saved.

WARN SolarWinds.Orion.Core.SharedCredentials.OrionEntitySharedCredentialManager`1 - (null) Found no CredentialRelations records for entity Uri swis://XXXXXX/Orion/Orion.Nodes/NodeID=X and use PaloAltoFirewall

Product section

Network Performance Monitor

Cause

This error occurs when one of the following conditions is true:
  • Incorrect permissions assigned to the Palo Alto credentials.
  • Cortex service needs to be restarted
  • Certificate associate with Palo Alto device was changed and SolarWinds device does not accept the newer certificate. 

Resolution

To resolve this problem, ensure to enable the permissions for XML API:  
  • Logs
  • Operational Requests are enabled.
Follow the procedure below:

Note: Before you start with the steps, restart Cortex service and wait for a while to be sure service is up and running again.

Workaround 1:

To workaround the certificate issue, perform the following steps:
 
  1. From the Node Management page, Select one of these nodes
  2. Click Edit Properties
  3. Select Poll for Palo Alto
  4. Enter The credentials and TEST.
  5. If you see certificate error, click Accept Certificate
  6. Click TEST
  7. Once Test is successful, uncheck Poll for Palo Alto
  8. Click Submit
  9. Edit Properties
  10. Enable Poll for Palo Alto
  11. Enter in 'User name', 'Password' and 'TEST CREDENTIALS'
  12. Click Accept Certificate
  13. Click TEST
  14. Click Submit
    • Check if the polling works. You can check in Cortex.log

Workaround 2:

  1. From the Node Management page, Select one of these nodes
  2. Click Edit Properties
  3. Under Polling Method, re-enter the SNMP credentials again
  4. Click Test
  5. At the bottom of the page, click Submit
If the workaround works, please continue to file support ticket and provide diagnostics logs to ensure SolarWinds Support can properly resolve the issue.